Dispatches From The Internets

UK researcher says one line of code caused Ticketmaster breach

Third party code, people… third party code.

He pointed out that while Inbenta had provided Ticketmaster a customised JavaScript one-liner, the ticketing company had placed this chatbot code on its payment processing website without informing Inbenta it had done so. “This means that Inbenta’s webserver was placed in the middle of all Ticketmaster credit card transactions, with the ability to execute JavaScript code in customer browsers,” Beaumont said.

Sigh.








Going Offline

As you’ve probably gathered if you’ve been following my work for the last few years, I’m super-jazzed about Progressive Web Apps. I think they have the potential to improve user experience, performance, access, and so much more for so many people. So I was stoked when Jeremy Keith asked me to write the foreword for his latest book, Going Offline, which tackles the complex topic of Service Workers with aplomb. With his permission (and A Book Apart’s), I’m reprinting the foreword here.



Colors

The folks at Canva have amassed a pretty expansive color tool that discusses various aspects—like history and associations—of a ridiculous number of colors. This resource also helps you build color sets around each of the colors by exploring complementary colors, analogous colors, and color triads that include it. Pretty cool stuff!